Nextcloud

Nextcloud Server

175 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.03%
  • Veröffentlicht 16.05.2025 14:35:25
  • Zuletzt bearbeitet 30.09.2025 19:37:40

Nextcloud Server is a self hosted personal cloud system. In Nextcloud Server prior to 29.0.13, 30.0.7, and 31.0.1 and Nextcloud Enterprise Server prior to 26.0.13.13, 27.1.11.13, 28.0.14.4, 29.0.13, 30.0.7, and 31.0.1, an attacker on a multi-user sys...

  • EPSS 0.04%
  • Veröffentlicht 16.05.2025 14:31:50
  • Zuletzt bearbeitet 08.09.2025 21:54:14

Nextcloud Server is a self hosted personal cloud system, and the Nextcloud Groupfolders app provides admin-configured folders shared by everyone in a group or team. In Nextcloud Server prior to 30.0.2, 29.0.9, and 28.0.1, Nextcloud Enterprise Server ...

  • EPSS 0.07%
  • Veröffentlicht 16.05.2025 14:09:27
  • Zuletzt bearbeitet 19.09.2025 17:41:47

Nextcloud Server is a self hosted personal cloud system. In Nextcloud Server prior to 28.0.13, 29.0.10, and 30.0.3 and Nextcloud Enterprise Server prior to 28.0.13, 29.0.10, and 30.0.3, a currently unused endpoint to verify a share recipient was not ...

  • EPSS 0.03%
  • Veröffentlicht 16.05.2025 14:02:57
  • Zuletzt bearbeitet 30.09.2025 19:59:50

Nextcloud Server is a self hosted personal cloud system. Nextcloud Server prior to 29.0.15, 30.0.9, and 31.0.3 and Nextcloud Enterprise Server prior to 26.0.13.15, 27.1.11.15, 28.0.14.6, 29.0.15, 30.0.9, and 31.0.3 have a bug with session handling. T...

  • EPSS 0.1%
  • Veröffentlicht 15.11.2024 18:15:30
  • Zuletzt bearbeitet 01.10.2025 18:04:28

Nextcloud Server is a self hosted personal cloud system. After receiving a "Files drop" or "Password protected" share link a malicious user was able to download attachments that are referenced in Text files without providing the password. It is recom...

  • EPSS 0.05%
  • Veröffentlicht 15.11.2024 18:15:30
  • Zuletzt bearbeitet 01.10.2025 17:49:30

Nextcloud Server is a self hosted personal cloud system. After a user received a share with some files inside being blocked by the files access control, the user would still be able to copy the intermediate folder inside Nextcloud allowing them to af...

  • EPSS 0.11%
  • Veröffentlicht 15.11.2024 17:15:23
  • Zuletzt bearbeitet 23.01.2025 14:33:48

Nextcloud Server is a self hosted personal cloud system. Under certain conditions the password of a user was stored unencrypted in the session data. The session data is encrypted before being saved in the session storage (Redis or disk), but it would...

  • EPSS 0.38%
  • Veröffentlicht 15.11.2024 17:15:22
  • Zuletzt bearbeitet 05.09.2025 00:00:50

Nextcloud Server is a self hosted personal cloud system. Due to a pre-flighted HEAD request, the link reference provider could be tricked into downloading bigger websites than intended, to find open-graph data. It is recommended that the Nextcloud Se...

  • EPSS 0.18%
  • Veröffentlicht 15.11.2024 17:15:22
  • Zuletzt bearbeitet 23.01.2025 14:52:33

Nextcloud Server is a self hosted personal cloud system. MD5 hashes were used to check background jobs for their uniqueness. This increased the chances of a background job with arguments falsely being identified as already existing and not be queued ...

  • EPSS 0.12%
  • Veröffentlicht 15.11.2024 17:15:22
  • Zuletzt bearbeitet 01.10.2025 18:30:02

Nextcloud Server is a self hosted personal cloud system. After setting up a user or administrator defined external storage with fixed credentials, the API returns them and adds them into the frontend again, allowing to read them in plain text when an...